The Framework UI permission-dialog implementation in Android 6.x before 2016-06-01 allows attackers to conduct tapjacking attacks and access arbitrary private-storage files by creating a partially overlapping window, aka internal bug 26677796.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2016-06-13 01:59
Updated : 2025-04-12 10:46
NVD link : CVE-2016-2496
Mitre link : CVE-2016-2496
CVE.ORG link : CVE-2016-2496
JSON object : View
Products Affected
- android
CWE
CWE-1021
Improper Restriction of Rendered UI Layers or Frames